Summary of the invention
In order to realize this purpose, using the method for detecting the data sent in the computer network have at least one computer, the data wherein sent are transmitted to additional computer, wherein make data branches without impact and guide to data detection device.
Having a major advantage in that of the method according to the invention: described method can be performed about computer network without impact so that be especially absent from the probability being mixed in network by data.Thus, data-detection apparatus can use in the system in safe practice.
In the method according to the invention, the data sent can be transmitted in a different manner to additional computer, for instance via dedicated radio link.
Regard as at secure context and be particularly advantageous: data are via connection line transmission to additional computer, wherein being received in data detection device via the data of connection line transmission to additional computer, described data detection device is connected with connection line without impact via hardware based shunt.
When using the connection being used for nothing impact without that affect, hardware based shunt, it is possible to the reliable nothing of favourable mode performs the method according to the invention with affecting.When in order to use read-only circuit without the connection of impact, corresponding content is applicable.
When not only using the shunt without impact but also using read-only circuit, connection is especially reliable without impact.
Advantageously, by connecting data detection device guarantee via shunt and/or the read-only circuit without impact: computer network can not be produced impact by data detection device.Additionally, the method according to the invention provides feasibility favourable as follows due to its nothing impact property: by the detected data accessing in data detection device with monitoring system electronic of higher level.
In the basic version of the method according to the invention, additional computer serves merely as data sink, so as to guide the data to be detected in computer network to data-detection apparatus.
In another favourable design of the method according to the invention, additional computer promotes at least one computer in the computer network of safe practice aspect to send data.It is to say, additional computer is used herein to the one or more computers in inquiry computer network.
The method according to the invention can perform in different variations.Regard as and be particularly advantageous: use the switching Ethernet network with the data as message transmission as computer network, use packet detection apparatus as data-detection apparatus and to use packet check device as data detection device, and use the Ethernet TAP without impact as hardware based data splitter.
Additional computer can use in a different manner in the method according to the invention of this design, regards as and is particularly advantageous: at least one described computer independently sends additional computer to by additional for the data message being received by and/or export.
Additionally it is believed that advantageously: computer is activated by additional computer so that described computer status data message and/or diagnosis data message.At this, regard as again and be particularly advantageous: when multiple computer cyclically status data message and/or diagnosis data message.This is such as owing to cyclically inquiring additional computer one side or being undertaken by suitable order, and described order is sent at least one in computer by additional computer.
In addition in conjunction with advantageous: the status data message of computer and/or the inquiry of diagnostic message message will be forwarded to the receiving port of corresponding computer by additional computer.
Also referred to as being particularly advantageous: the method according to the invention security system in railway technology performs.Because being increasingly using switching Ethernet network in such systems.Mandatory detect computer data or message with needing nothing impact in security system in this railway technology, and only machine calculated as below, also including additional computer, use in interlocking mechanism, described computer is upgraded according to the regulation for this application type.
The present invention is additionally based upon following purpose: propose a kind of data-detection apparatus for computer network, and described data-detection apparatus works without impact about computer network or its computer are reliable.
According to the present invention, the data-detection apparatus of the data of a kind of at least one computer for detecting in computer network is for achieving the object, wherein data-detection apparatus has unique connecting device of at least one computer to computer network, data-detection apparatus comprises additional computer, described additional computer is connected in unique connecting device, and data-detection apparatus has data detection device, described data detection device is connected with unique connecting device without impact.
Detection equipment according to the present invention correspondingly has and has been described above in conjunction with the identical advantage of the advantage illustrated by the method according to the invention.
Unique connecting device can be wireless electrical connection means.In in accordance with safety rule advantageously: unique connecting device is connection line, and data detection device is connected on described connection line without impact via hardware based shunt.
Connection without impact can be differently composed.Show as advantageously: hardware based shunt is based on shunt hardware, nothing impact, because this shunt provides as assembly.
But also regard as advantageously in this article: data detection device is connected with connection line without impact via hardware based shunt and read-only circuit.
Computer network can be differently composed according in the data-detection apparatus of the present invention.Think and be particularly advantageous: computer network is the switching Ethernet network with the data sent as message, data-detection apparatus is packet detection apparatus and data detection device is packet check device, and hardware based shunt is corresponding Ethernet TAP.
Detection equipment according to the present invention can especially advantageously in security system in railway technology type according to switching Ethernet network use.
Detailed description of the invention
Fig. 1 illustrates the computer network being configured to switching Ethernet network 1, preferably in the switching Ethernet network used in the security system of railway technology aspect, the computer 2,3,4 and 5 of the described switching Ethernet network packet safety-related component form containing the security system in railway technology aspect.Being respectively equipped with two-way communication link between computer 2 to 5, described communication link is via the data circuit 9 of central authorities and guides without the network switch illustrated via for better general view;The network switch via connecting link, (Anschlussverbindungen) 10 to 13 be connected to each in computer 2 to 5 on.
Data circuit 9 is provided with the network switch 15 that being diagrammatically only by property shows.Being connected on the COM1 16 of the network switch 15 by connection line 18, described connection line guides to additional computer 19, and described additional computer is also to be provided with ethernet network interface in this unshowned mode.
There is Ethernet TAP20, described Ethernet TAP in connection line 18 is circuit arrangement knownly, realizes the access without impact on the data stream on connection line 18 via described circuit arrangement.Ethernet TAP20 is connected with the packet check device 22 of the message for computer 2 to 5 by read-only circuit 21.Packet detection apparatus 22 also has the storage device 24 for message in the embodiment illustrated except monitoring calculation machine 23, and described storage device is connected to supervision computer 23 downstream.
Can be accessed, by the supervision system of unshowned higher level, the message detected by packet check device 22 via the Internet 25 at packet check device 22 place, and the feedback to switching Ethernet network 1 does not thus occur.This can monitor message traffic and/or packet check device 22 is only connected with Ethernet TAP via read-only circuit 21 without impact based on: Ethernet TAP20.
Fig. 2 illustrates the switching Ethernet network 1 with computer 2,3 and 4, and wherein consistent with the element of Fig. 1 element is provided with identical accompanying drawing labelling, and described computer is respectively equipped with MAC Address and also is bidirectionally connected with the network switch 15 respectively.At this, each in computer 2 to 4 is configured to so that the message being received by or send is packed in data technique and sends to additional computer 19 as the data sent by described computer again.It is to say, in each in computer 2 to 4 or 5, produce that received respectively and/or that send the message to these other computers " virtual image " by other computers.Computer 2 to 4 is respectively equipped with COM1 26,27 and 28.Ethernet switch 15 is connected with connection line 18 via its COM1 16.Connection line 18 guides the receiving port 30 to additional computer 19.Ethernet TAP20 is connected on connection line 18.
As shown in addition in fig. 2: Ethernet TAP20 is configured to so that only can make message branch in this embodiment.Ethernet TAP without impact is additionally connected with the receiving port 35 of packet check device 22 via read-only circuit 21.The connection of the monitoring system to higher level can be set up via communicating route 36 from this packet check device 22.Additional computer 19 forms packet detection apparatus 37 with connection line 18 and Ethernet TAP20 together with read-only circuit 21 and packet check device 22.
Carry out as follows according to that method of the present invention: if such as message is sent to computer 4 by computer 2, then ensure this COM Continuation of Message is transferred to additional computer 19 by corresponding device.Because this transmission must carry out via connection line 18, so the message sent in a network is detected by the Ethernet TAP20 without impact and is transmitted to data detection device 22 via read-only circuit 21.Thus, by network computer send each message by data detection device without impact record.Additionally, computer (such as computer 4) each message received also is able to additionally be transferred to additional computer 19 by corresponding device and then same by data-detection apparatus 37 record.
In another variations, activate or ask such as computer 2 to send such as diagnostic message message via communication connection 18 and the network switch 15 via adapter path 40 shown in broken lines by additional computer 19.Subsequently, the COM1 26 of this computer is passed through via the network switch 15 by this message transmissions to additional computer 19 via signal path 41 shown in broken lines.This transmission carries out via connection line 18 so that Ethernet TAP20 can detect this message and be directed to monitor unit 23 via read-only circuit 21.Switching Ethernet network 1 can not be produced feedback at this by the latter by any way, because there is read-only circuit 21 and the Ethernet TAP20 without impact between packet check device 22.
Computer 3 and 4 can being made active in export such as status information message via other adapter path 42 or 43 in the corresponding way, described status information message transmits to additional computer 19 via connection line 18 subsequently.Also these messages are detected via Ethernet TAP20 and packet check device 22 without impact at this.